2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49615 | HIGH | 8.7 | 0.2% | Feb 12, 2025 | Improper input validation in some Intel(R) System Security Report and System Resources Defense firmware may allow a priv... |
| CVE-2023-49603 | HIGH | 8.7 | 0.1% | Feb 12, 2025 | Race condition in some Intel(R) System Security Report and System Resources Defense firmware may allow a privileged user... |
| CVE-2023-48267 | HIGH | 8.6 | 0.2% | Feb 12, 2025 | Improper buffer restrictions in some Intel(R) System Security Report and System Resources Defense firmware may allow a p... |
| CVE-2023-43758 | HIGH | 8.7 | 0.3% | Feb 12, 2025 | Improper input validation in UEFI firmware for some Intel(R) processors may allow a privileged user to potentially enabl... |
| CVE-2023-34440 | HIGH | 8.7 | 0.2% | Feb 12, 2025 | Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enabl... |
| CVE-2023-31276 | HIGH | 8.4 | 0.2% | Feb 12, 2025 | Heap-based buffer overflow in BMC Firmware for the Intel(R) Server Board S2600WF, Intel(R) Server Board S2600ST, Intel(R... |
| CVE-2023-29164 | HIGH | 7.3 | 0.2% | Feb 12, 2025 | Improper access control in BMC Firmware for the Intel(R) Server Board S2600WF, Intel(R) Server Board S2600ST, Intel(R) S... |
| CVE-2023-31345 | HIGH | 7.5 | 0.2% | Feb 12, 2025 | Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to ... |
| CVE-2023-31343 | HIGH | 7.5 | 0.2% | Feb 11, 2025 | Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to ... |
| CVE-2023-31342 | HIGH | 7.5 | 0.2% | Feb 11, 2025 | Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to ... |
| CVE-2023-31361 | HIGH | 7.3 | 0.2% | Feb 11, 2025 | A DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attac... |
| CVE-2023-31360 | HIGH | 7.3 | 0.2% | Feb 11, 2025 | Incorrect default permissions in the AMD Integrated Management Technology (AIM-T) Manageability Service installation dir... |
| CVE-2023-6386 | HIGH | 7.5 | 0.5% | Feb 5, 2025 | A denial of service vulnerability was identified in GitLab CE/EE, affecting all versions from 15.11 prior to 16.6.7, 16.... |
| CVE-2023-40222 | HIGH | 8.4 | 0.2% | Feb 4, 2025 | In Ashlar-Vellum Cobalt versions prior to v12 SP2 Build (1204.200), the affected application lacks proper validation of ... |
| CVE-2023-39943 | HIGH | 8.4 | 0.2% | Feb 4, 2025 | In Ashlar-Vellum Cobalt versions prior to v12 SP2 Build (1204.200), the affected application lacks proper validation of ... |
| CVE-2023-52163 | HIGH | 8.8 | 96.3% | Feb 3, 2025 | Digiever DS-2105 Pro 3.1.0.71-11 devices allow time_tzsetup.cgi Command Injection. NOTE: This vulnerability only affects... |
| CVE-2023-38739 | HIGH | 8.8 | 0.2% | Jan 31, 2025 | IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site request forg... |
| CVE-2023-29080 | HIGH | 8.5 | 0.2% | Jan 30, 2025 | Potential privilege escalation vulnerability in Revenera InstallShield versions 2022 R2 and 2021 R2 due to adding Instal... |
| CVE-2023-38716 | HIGH | 7.5 | 0.3% | Jan 25, 2025 | IBM Cloud Pak System 2.3.3.6, 2.3.36 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, and 2.3.4.0 could disclose sensitive ... |
| CVE-2023-38714 | HIGH | 7.5 | 0.3% | Jan 25, 2025 | IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, ... |
| CVE-2023-38713 | HIGH | 7.5 | 0.3% | Jan 25, 2025 | IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, ... |
| CVE-2023-38013 | HIGH | 7.5 | 0.3% | Jan 25, 2025 | IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, ... |
| CVE-2023-37023 | HIGH | 8.6 | 0.8% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain a reachable assertion in the `Uplink NAS Transport` packet handler. A packet missi... |
| CVE-2023-37022 | HIGH | 7.5 | 0.8% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain a reachable assertion in the `UE Context Release Request` packet handler. A packet... |
| CVE-2023-37021 | HIGH | 8.6 | 0.8% | Jan 22, 2025 | Open5GS MME version <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now